TROYANOSYVIRUS
Back to URLs

nortideis9.plsqlnew.surf

https://nortideis9.plsqlnew.surf/draw-msft-cl0ud-acc-trust7934/gettwo.dll

offlinemalware_downloadSource: urlhaus

URL Details

Hostnortideis9.plsqlnew.surf
Schemehttps
Path/draw-msft-cl0ud-acc-trust7934/gettwo.dll
TLDsurf
Registered Domainplsqlnew.surf
Host Typefqdn
Date Added5/6/2026, 1:08:09 PM
Last Online5/6/2026, 1:08:09 PM
First Seen5/6/2026, 1:08:09 PM
Last Seen5/6/2026, 1:08:09 PM

Tags

ClearFakeSnappyClient

IOC Correlations

urldomain: nortideis9.plsqlnew.surf(hosted_on)80%